Security Intelligence
F5 patches critical NGINX flaws affecting edge infrastructure
F5 released updates on June 17, to fix two critical NGINX vulnerabilities that allow remote, unauthenticated...
Security Intelligence
F5 released updates on June 17, to fix two critical NGINX vulnerabilities that allow remote, unauthenticated...
Security Intelligence
Researchers validated the FortiBleed dataset, exposing potentially valid credentials for approx. 75,000 Fortinet...
Security Intelligence
Active exploitation of CVE‑2026‑20253 began within days of disclosure, targeting exposed Splunk Enterprise systems that...
Security Intelligence
A critical auth. bypass flaw in SimpleHelp allows unauthenticated adversaries to create privileged technician accounts...
Security Intelligence
A threat actor used domain-level content compliance rules to exfiltrate email comms, turning a built-in control into an...
Security Intelligence
ShinyHunters’ exploitation of Oracle PeopleSoft is confirmed to involve a zero‑day in the Environment Management Hub...
Security Intelligence
ShinyHunters is conducting large-scale data theft operations against Oracle PeopleSoft by combining multiple flaws with...
Security Intelligence
An actively exploited zero-day in Langflow can lead to full system compromise if not contained. The issue remains...
Security Intelligence
UniFi OS flaws allow full control of the system with a single unauthenticated request, resulting in a much broader...
Security Intelligence
A Qilin ransomware affiliate has been actively exploiting a critical authentication bypass in Check Point's Remote...
Security Intelligence
A zero‑day in Cisco Catalyst SD‑WAN Manager enables attackers with netadmin access to execute commands as root and push...
Security Intelligence
A newly disclosed flaw in Cisco Unified Communications Manager exposes organizations to a high-impact attack path that...